CertNova
Menu
← Back to PBQ types

Firewall PBQs: CISSP - Certified Information Systems Security Professional

easy

Question 1 of 3

As the information security manager for a mid-size enterprise, you have been asked to review the firewall policy protecting the management network (10.2.0.0/24). A recent internal audit found that SSH access to the management VLAN is open to the entire corporate network instead of being restricted to the security operations team. Additionally, there is no default deny rule in place. Correct the firewall policy to enforce least privilege access to the management network.

Firewall Rules

#DirectionSourcePortProtocolActionOrder
1inbound10.0.0.0/822tcpallow
2inbound10.2.0.0/24443tcpallow

Rules are evaluated top to bottom. Use ▲▼ to reorder.

Progress

0 of 3 rules correct

Edit or add rules to configure the firewall, then mark complete

0 of 3 marked complete